Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Blog de Tenable

September 30, 2025

The Trifecta: How Three New Gemini Vulnerabilities in Cloud Assist, Search Model, and Browsing Allowed Private Data Exfiltration

Tenable Research discovered three vulnerabilities (now remediated) within Google’s Gemini AI assistant suite, which we dubbed the Gemini Trifecta. These vulnerabilities exposed users to severe privacy risks. They made Gemini vulnerable to search-injection attacks on its Search Personalization Model; log-to-prompt injection attacks against Gemini Cloud Assist; and exfiltration of the user’s saved information and location data via the Gemini Browsing Tool.

15, 2021 de noviembre

Tales Of Zero-Day Disclosure: Tenable Researchers Reveal Recommendations for a Successful Experience

Real life stories of vulnerability discovery and disclosure from Tenable’s Zero Day Research team offer guidance you can use to refine your organization's policies.


10 de noviembre de 2021

CISA Directive 22-01: How Tenable Can Help You Find and Fix Known Exploited Vulnerabilities

While U.S. federal agencies are required to remediate the vulnerabilities outlined in the U.S. Cybersecurity and Infrastructure Security Agency's Binding Operational Directive 22-01, any organization would do well to consider prioritizing these flaws as part of their risk-based vulnerability…


4 de noviembre de 2021

How to Choose an OT Cybersecurity Solution Vendor

Hint: choose a leader in ICS security.


3, 2021 de noviembre

How Smart Secrets Storage Can Help You Avoid Cloud Security Risks

The not-so-sensitive locations that may tempt you when storing sensitive information — why to avoid them and how.


3, 2021 de noviembre

CISA’s Binding Operational Directive on Managing Unacceptable Risk Vulnerabilities in Federal Enterprises Is Key to Stopping Federal Cyberattacks

Federal agencies should leverage Tenable’s vulnerability priority rating (VPR) to effectively manage the nearly 300 vulnerabilities identified.


2 de noviembre de 2021

Nessus 10.0: Vulnerability Assessment for Today’s Dynamic Environments

New features are designed to offer the portability, efficiency and ease-of-use needed to protect the ever-expanding attack surface.


October 28, 2021

Active Directory is Now in the Ransomware Crosshairs

A flurry of ransomware operators are now targeting Active Directory (AD) as a core step in the attack path. Understanding the details can help you ensure your AD environment is secure.


October 22, 2021

Estafas de TikTok LIVE: Imágenes en vivo robadas que se utilizan para obtener obsequios de TikTok y promover estafas para ganar dinero

Las imágenes de video robadas de celebridades, creadores de contenido y otros están siendo utilizadas por estafadores en transmisiones de TikTok LIVE para obtener obsequios de TikTok, vender productos dudosos y conducir a los usuarios a sitios web de citas para adultos.


October 21, 2021

Un enfoque limitado a las CVE deja a las organizaciones vulnerables a los ataques

CWEs and other vulnerabilities necessitate a single dashboard for complete cyber risk assessment  A growing number of cybersecurity professionals have evolved their legacy vulnerability management programs to incorporate prioritizing remediation efforts based on which vulnerabilities pose the…


Noticias de ciberseguridad que le son útiles

Ingrese su correo electrónico y nunca se pierda alertas oportunas y orientación en seguridad de los expertos de Tenable.

Un vistazo al Ecosistema de ransomware

Descargar el informe >

× Póngase en contacto con nuestro equipo de ventas